CVE-2025-7012: Cato Networks Linux Client Local Privilege Escalation via Symlink
An issue in Cato Networks' CatoClient for Linux, before version 5.5, allows a local attacker to escalate privileges to root by exploiting improper symbolic link handling.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Cato Networks CatoClient for Linuxto a version that resolves this vulnerability.Fixed in 5.5
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7012?
CVE-2025-7012 has a high severity rating due to its potential for local privilege escalation.
How do I fix CVE-2025-7012?
To resolve CVE-2025-7012, upgrade CatoClient for Linux to version 5.5 or later.
Who is affected by CVE-2025-7012?
CVE-2025-7012 affects users of Cato Networks' CatoClient for Linux versions prior to 5.5.
What type of vulnerability is CVE-2025-7012?
CVE-2025-7012 is a local privilege escalation vulnerability caused by improper symbolic link handling.
Can CVE-2025-7012 be exploited remotely?
No, CVE-2025-7012 requires local access to the system to be exploited.